Apache Hadoop Vulnerability Allows Command Execution by Escalated Users
CVE-2018-11766
8.8HIGH
What is CVE-2018-11766?
A vulnerability exists in Apache Hadoop versions 2.7.4 to 2.7.6, where the security patch for a previous flaw was inadequately addressed. This flaw potentially allows a user with escalated privileges to the 'yarn' user to execute arbitrary commands with root privileges, creating significant security risks for affected systems. Users should be aware of this vulnerability as it could lead to unauthorized access and control over critical system functions.
Affected Version(s)
Apache Hadoop Apache Hadoop 2.7.4 to 2.7.6